Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
[ GLSA 201811-12 ] GPL Ghostscript
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index News & Announcements
View previous topic :: View next topic  
Author Message
GLSA
Advocate
Advocate


Joined: 12 May 2004
Posts: 2226

PostPosted: Sat Nov 24, 2018 9:26 pm    Post subject: [ GLSA 201811-12 ] GPL Ghostscript Reply with quote

Gentoo Linux Security Advisory

Title: GPL Ghostscript: Multiple vulnerabilities (GLSA 201811-12)
Severity: normal
Exploitable: remote
Date: 2018-11-24
Bug(s): #618820, #626418, #635426, #655404, #668846, #671732
ID: 201811-12

Synopsis

Multiple vulnerabilities have been found in GPL Ghostscript, the
worst of which could result in the execution of arbitrary code.


Background

Ghostscript is an interpreter for the PostScript language and for PDF.

Affected Packages

Package: app-text/ghostscript-gpl
Vulnerable: < 9.26
Unaffected: >= 9.26
Architectures: All supported architectures


Description

Multiple vulnerabilities have been discovered in GPL Ghostscript. Please
review the CVE identifiers referenced below for additional information.


Impact

A context-dependent attacker could entice a user to open a specially
crafted PostScript file or PDF document using GPL Ghostscript possibly
resulting in the execution of arbitrary code with the privileges of the
process, a Denial of Service condition, or other unspecified impacts,


Workaround

There is no known workaround at this time.

Resolution

All GPL Ghostscript users should upgrade to the latest version:
Code:
# emerge --sync
      # emerge --ask --oneshot --verbose ">=app-text/ghostscript-gpl-9.26"
   


References

CVE-2017-11714
CVE-2017-7948
CVE-2017-9610
CVE-2017-9611
CVE-2017-9612
CVE-2017-9618
CVE-2017-9619
CVE-2017-9620
CVE-2017-9726
CVE-2017-9727
CVE-2017-9739
CVE-2017-9740
CVE-2017-9835
CVE-2018-10194
CVE-2018-15908
CVE-2018-15909
CVE-2018-15910
CVE-2018-15911
CVE-2018-16509
CVE-2018-16510
CVE-2018-16511
CVE-2018-16513
CVE-2018-16539
CVE-2018-16540
CVE-2018-16541
CVE-2018-16542
CVE-2018-16543
CVE-2018-16585
CVE-2018-16802
CVE-2018-18284
CVE-2018-19409
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index News & Announcements All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum